Skip to main content

High-risk security reports

Browse 46,997 Guard analyses across this slice of the directory — NIS2 / GDPR readiness, SSL/TLS, DNS hygiene and email authentication.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157364
Websites
130
Industries
113
Countries
52
Avg Score
Page 912 of 940|Showing 45551-45600 of 46997
sgkk.at favicon

Österreichische Gesundheitskasse

sgkk.at

40
HealthcareAustrialargeHIGH

The Österreichische Gesundheitskasse (ÖGK) operates as a major public healthcare insurance provider in Austria, offering a broad range of health-related services to insured individuals, employers, and partners. The website serves as an information and service portal, providing access to appointment scheduling, customer service, health information, and career opportunities. The target audience primarily includes Austrian residents and healthcare stakeholders. The organization holds a strong market position as a government-affiliated entity with consistent branding and trust indicators such as official social media presence and comprehensive privacy policies. Technically, the website is built on a custom CMS likely based on Gentics Content Server, utilizing Jakarta Faces (JSF) framework and jQuery 3.6.0. It integrates Piwik PRO for analytics and employs a detailed Content Security Policy. However, the site currently lacks a valid SSL certificate and does not support HTTPS, which significantly impacts its security posture. Performance data is limited but suggests slower load times. Accessibility and SEO optimizations are well implemented. From a security perspective, the absence of HTTPS and modern TLS protocols is a critical vulnerability. While security headers like CSP and HSTS are present, the lack of a valid certificate and secure transport reduces overall security. No explicit incident response or vulnerability disclosure mechanisms are found. Privacy compliance is strong, with clear cookie consent and privacy policies aligned with GDPR. Overall, the website is professional and trustworthy in content and business credibility but requires urgent improvements in SSL/TLS implementation to enhance security and user trust. Strategic recommendations include immediate SSL certificate deployment, enabling modern TLS protocols, and enhancing security header configurations to protect user data and comply with best practices.

50
-
5
50
-
85
100
healthcarepublicservicegovernmentaustriahealthinsurance
ApachejQuery 3.6.0Jakarta Faces (JSF)Slick Carousel+1

Partner Domains:

sozialversicherung.at
partnerpending
meineoegk.at
partnerpending

+2 more partners

2025-06-15T21:47:06.196Z
unodc.org favicon

United Nations Office on Drugs and Crime

unodc.org

40
GovernmentAustrialargeHIGH

The United Nations Office on Drugs and Crime (UNODC) operates as a key intergovernmental agency focused on combating illicit drugs, crime, corruption, and terrorism globally. It provides extensive research, policy guidance, and technical assistance to member states and partners, positioning itself as a leading authority in its domain. The website reflects a mature, well-branded digital presence with comprehensive content and multi-language support targeting governments, NGOs, researchers, and the public. Technically, the site uses a modern tech stack including Apache, AngularJS, Bootstrap, and Google Tag Manager, hosted on UN Vienna infrastructure. While the site is moderately performant and mobile-optimized, it lacks a valid SSL certificate and modern TLS support, which critically undermines its security posture. Security headers are well implemented, but the absence of HTTPS and session security features are significant vulnerabilities. From a security perspective, the site demonstrates good header policies but fails to provide encrypted transport, OCSP stapling, or session resumption. Privacy compliance is partial, with a privacy policy present but no cookie consent mechanism despite tracking scripts. Business credibility is high given the official UN affiliation and consistent WHOIS data. Overall, the site is authoritative and professional but requires urgent security improvements, especially SSL deployment, to ensure trust and compliance. Strategic recommendations include obtaining valid HTTPS certificates, enabling modern TLS protocols, implementing cookie consent, and enhancing incident response visibility.

65
-
5
70
-
70
100
undrugscrimecorruptionterrorism+4 more
ApacheGoogle Tag ManagerBootstrapFontAwesome+3
2025-06-15T21:47:06.186Z
novomatic.com favicon

NOVOMATIC AG

novomatic.com

40
TechnologyAustriaenterpriseHIGH

NOVOMATIC AG is a leading global gaming technology company headquartered in Austria, founded in 1980. It operates as a full-service provider in the gaming industry, offering a broad portfolio including gaming cabinets, games, platforms, and additional products. The company has a strong market position as one of the largest gaming technology corporations worldwide and the clear market leader in Europe. The website reflects a professional corporate presence targeting industry partners, casino operators, and job seekers, with comprehensive contact information and multilingual support. Technically, the website is built on Drupal 10 CMS and leverages modern JavaScript libraries and analytics tools such as Matomo. It is hosted behind Sucuri Cloudproxy WAF, ensuring some level of protection. However, the absence of a valid SSL certificate and HTTPS support is a critical security gap that significantly lowers the security posture. The site implements security headers and content security policies but must urgently address SSL/TLS configuration to protect user data and maintain trust. Privacy compliance is well addressed with GDPR-compliant privacy and cookie policies, including a consent mechanism. The company demonstrates business credibility through detailed contact information, licensing by the UK Gambling Commission, and consistent WHOIS data. Overall, the site is content-rich, professionally designed, and trustworthy but requires immediate security improvements regarding SSL/TLS. Strategic recommendations include obtaining and properly configuring SSL certificates, enabling modern TLS protocols, enhancing OCSP stapling and session resumption, and maintaining strong security header policies. These steps will improve security, user trust, and compliance with industry standards.

70
18
5
50
-
85
100
gamingtechnologycasinogaming-technologycorporate+1 more
Drupal 10jQueryMatomo analyticsSucuri Cloudproxy+2

Partner Domains:

greentube.com
partnerpending
admiral-games.de
subsidiarypending

+2 more partners

2025-06-15T21:47:06.132Z
pbbr.pt favicon

pbbr | Sociedade de Advogados RL, Lda.

pbbr.pt

40
OtherPortugalsmallHIGH

pbbr | Sociedade de Advogados RL, Lda. is a small full service law firm based in Lisbon, Portugal, established in 2006. The firm offers comprehensive legal advice and assistance with a national and international client base. Their website reflects a professional and consistent brand image, targeting clients seeking high-quality legal services. The firm maintains a presence on LinkedIn and provides newsletter subscriptions to engage clients and partners. Technically, the website uses a modern tech stack including nginx, PHP, Bootstrap, Google Tag Manager, and Cookiebot for consent management. The site is mobile optimized and SEO friendly, though performance metrics are unavailable. Hosting is managed via host-redirect.com DNS servers. However, the website lacks a valid SSL certificate, resulting in no proper HTTPS support, which is a significant security concern. Security posture is moderate with good use of security headers and content security policies, but the absence of valid SSL/TLS and modern TLS protocols severely undermines security. Privacy and cookie policies are present and GDPR compliant, with consent mechanisms implemented. Contact information is limited to forms, with no explicit emails or phone numbers displayed. Overall, the website is functional and professional but requires urgent remediation of SSL/TLS issues to improve security and trustworthiness. Strategic improvements in security and contact transparency will enhance the firm's digital maturity and client confidence.

85
33
5
50
-
85
100
lawfirmlegalservicesportugalfullserviceprofessionalservices
nginxPHPGoogle Tag ManagerCookiebot+5
2025-06-15T21:47:06.014Z
boyden.com favicon

Boyden

boyden.com

36
OtherN/alargeHIGH

Boyden is a globally recognized leadership and talent advisory firm specializing in executive search, interim management, and leadership consulting services. The company operates through a broad international network with over 75 offices in more than 45 countries, serving a diverse range of industries and markets. Their website reflects a professional and comprehensive presentation of their services, targeting corporate clients seeking high-level talent solutions worldwide. Technically, the website employs standard web technologies including HTML5, CSS3, and jQuery. While the site is well-structured with good SEO and mobile optimization basics, performance data is unavailable. The absence of a valid SSL certificate and lack of modern TLS protocols represent significant technical and security shortcomings. Despite strong security headers and cookie consent mechanisms, the invalid SSL undermines overall security posture. From a security perspective, the site demonstrates awareness of best practices through implemented headers and cookie policies but critically fails in SSL deployment, exposing users to potential risks. No incident response or vulnerability disclosure information is provided, indicating gaps in security transparency and readiness. The WHOIS data supports the legitimacy of the domain and business identity, with no suspicious patterns detected. Overall, Boyden's website is professionally designed and content-rich, supporting its market position as a leading talent advisory firm. However, urgent remediation of SSL/TLS issues is necessary to ensure secure user interactions and maintain trust. Enhancements in security transparency and incident response communication would further strengthen their security posture and compliance.

85
18
5
50
-
90
40
executivesearchinterimmanagementleadershipconsultingprofessionalservicesglobal+1 more
jQuery 3.7.1HTML5CSS3
2025-06-15T21:47:05.975Z
venionaire.com favicon

Venionaire Capital

venionaire.com

28
FinanceAustriamediumHIGH

Venionaire Capital is a medium-sized, globally active investment and advisory firm specializing in Private Equity and Venture Capital. The company offers a broad range of services including fund management, corporate finance, M&A, restructuring, and research products. It targets investors, entrepreneurs, and corporates, positioning itself as an entrepreneurial partner with a strong global footprint and multiple co-founded initiatives enhancing the investment ecosystem. The website content is professionally presented with clear navigation and rich service descriptions, reflecting a mature business model and market presence. Technically, the website is built on WordPress using the Enfold theme and integrates common technologies such as jQuery, Yoast SEO, and Google Analytics. However, the site suffers from critical security shortcomings, notably the absence of HTTPS and a valid SSL certificate, which severely impacts its security posture. Performance is slow, and while mobile optimization and SEO are good, accessibility is basic. Cookie consent mechanisms are present, but no explicit security or incident response policies are published. Security-wise, the lack of HTTPS and modern TLS protocols is a major vulnerability, exposing users to data interception risks. No advanced security headers or certificate transparency measures are implemented. The WHOIS data is consistent with the business claims, showing no suspicious patterns. Overall, the site demonstrates good business credibility but requires urgent security improvements to protect user data and enhance trust. Strategically, Venionaire Capital should prioritize obtaining and configuring a valid SSL certificate, enabling HTTPS, and implementing modern security headers and protocols. Enhancing privacy and incident response disclosures would also improve compliance and user confidence. These steps will strengthen the company's digital maturity and reduce risk exposure.

15
18
5
50
-
85
40
financeventurecapitalprivateequityinvestmentcorporatefinance+3 more
nginxjQueryYoast SEOGoogle Analytics+5

Partner Domains:

superangels.club
partnerpending
worldventureforum.info
partnerpending

+2 more partners

2025-06-15T21:47:05.775Z
dialog-semiconductor.com favicon

Renesas Electronics Corporation

dialog-semiconductor.com

40
TechnologyN/aenterpriseHIGH

Renesas Electronics Corporation is a global leader in microcontrollers, analog, power, and SoC products, delivering embedded design innovation for a wide range of industries. The company targets embedded systems developers and technology companies with a comprehensive portfolio of semiconductor products and design resources. The website reflects a mature, enterprise-level business with a strong market position and extensive product offerings. Technically, the website is built on Drupal 10, hosted behind Cloudflare, and utilizes modern web technologies including Google Tag Manager and New Relic for monitoring. The site is well-structured, mobile-optimized, and SEO-friendly, providing a professional user experience. However, the absence of a valid SSL certificate and incomplete security configurations represent significant security concerns. From a security perspective, while several security headers are implemented, the lack of HTTPS and TLS support critically undermines the site's security posture. No explicit incident response or security policy pages were found, and cookie consent mechanisms are absent despite GDPR compliance indications. The domain is mature and registered with a reputable registrar, consistent with the company's profile. Overall, the site is professionally maintained with strong business credibility but requires urgent improvements in SSL/TLS deployment and privacy compliance mechanisms to enhance security and user trust.

70
18
5
50
-
70
100
technologysemiconductormicrocontrollersembeddedelectronics+1 more
Drupal 10Cloudflare CDNGoogle Tag ManagerNew Relic monitoring+4
2025-06-15T21:47:05.622Z
casinos.at favicon

Casinos Austria AG

casinos.at

40
HospitalityAustrialargeHIGH

Casinos Austria AG operates a comprehensive network of casinos across Austria, providing a wide range of gaming options including poker, slot machines, and table games, complemented by hospitality services such as restaurants and event locations. The website serves as the official digital presence, targeting casino visitors and players with detailed information on locations, events, membership benefits, and promotional packages. The company holds a strong market position as a leading casino operator in Austria, supported by consistent branding and trust indicators such as recognized certifications and responsible gaming initiatives. Technically, the website is built on TYPO3 CMS and employs modern web technologies including JavaScript and SVG graphics. It integrates multiple analytics and marketing tools with user consent mechanisms, ensuring good digital maturity. The site is mobile-optimized and accessible, with good SEO practices and clear navigation enhancing user experience. From a security perspective, while the site implements several important security headers and content security policies, it currently lacks a valid SSL certificate and does not support modern TLS protocols, significantly weakening its security posture. This exposes the site to risks related to unencrypted traffic and potential interception. Privacy compliance is well addressed with clear privacy and cookie policies and GDPR adherence. The presence of a responsible disclosure page indicates a proactive approach to vulnerability management. Overall, the site is professional and trustworthy but requires urgent improvements in SSL/TLS configuration to secure user data and maintain trust. Strategic recommendations include obtaining a valid SSL certificate, enabling TLS 1.2 or higher, and fully activating HSTS. These steps will enhance security, compliance, and user confidence, supporting the company’s strong market presence and digital strategy.

80
-
15
50
-
90
100
casinogamingpokerslotsevents+3 more
TYPO3 CMSJavaScriptSVG graphicsJentis analytics+1

Partner Domains:

lotterien.at
partnerpending
trustedshops.at
partnerpending

+1 more partners

2025-06-15T21:47:05.513Z
alliedpanels.com favicon

GoDaddy Operating Company, LLC

alliedpanels.com

38
E-commerceUnited StateslargeHIGH

The website alliedpanels.com is a domain aftermarket sales landing page hosted and operated under GoDaddy's platform. It offers the domain for sale with options to buy now, lease to own, or make an offer. The site targets domain investors and businesses seeking premium domain names, leveraging GoDaddy's trusted marketplace and brokerage services. The business model is focused on domain sales and brokerage within the e-commerce sector, supported by GoDaddy's large market presence and infrastructure. Technically, the site is built using modern JavaScript frameworks such as React and Next.js, hosted on AWS infrastructure. However, the site suffers from slow load times and lacks a valid SSL certificate, resulting in no HTTPS support. While the design and user experience are good and mobile optimized, the absence of HTTPS and security headers significantly weakens the security posture. Security evaluation reveals critical issues including no valid SSL certificate, no HSTS, and missing security headers, which expose users to potential risks. Privacy compliance is supported by comprehensive GoDaddy privacy and cookie policies, with GDPR compliance indicated. Contact information is limited but present via phone and contact form. Overall, the site is legitimate and consistent with domain aftermarket sales but requires urgent security improvements. Strategically, the site should prioritize obtaining and configuring a valid SSL certificate to enable HTTPS, implement security headers, and improve performance to enhance trust and user experience. These steps will strengthen the security posture and align with best practices for e-commerce platforms.

15
15
5
50
-
80
100
domain-for-saledomain-marketplacegodaddyafternicpremium-domain
ReactNext.jsJavaScriptCSS+3

Partner Domains:

afternic.com
partner75
godaddy.com
parent73

+1 more partners

2025-06-15T21:47:05.260Z